Malware

PWS:Win32/Frethog!pz malicious file

Malware Removal

The PWS:Win32/Frethog!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Frethog!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine PWS:Win32/Frethog!pz?


File Info:

name: A742F0FBD80ECBAFD08F.mlw
path: /opt/CAPEv2/storage/binaries/ad491b32ed2077b5d95b061b07320c6235ee40b301236ecd8bb232a115112a6d
crc32: 1B26AB65
md5: a742f0fbd80ecbafd08ff7c8476041a3
sha1: e4175b71b9b7b0b3e50232ad0be09f8e26c35ad7
sha256: ad491b32ed2077b5d95b061b07320c6235ee40b301236ecd8bb232a115112a6d
sha512: 8ad34a04dd3b47b545a41bc5ebe8be57986879e130cdae00bd8abeda29180aae3351603d897a681ca1ded5c4aef767c680320c5b0f0038be8810cfbb96c8a909
ssdeep: 384:yqb0PKvFROB9KHI3ZaUxCFhFHNIpTIZxj280EjqKIdDVnBxmNspLW5:WSvjOX4I3O/F4TyxC1K0fnJp
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T18BB2F1801D64CD63C0E49E382F2C479E66A023376DBE1EE52967C7AE1DDF9424F70A20
sha3_384: a617bf3f395d918c92c6deaf5ab36f7008aa0bee07b5f553ab8571307682b0aced0f7ff2c64a14033c37881663aadff4
ep_bytes: 807c2408010f857d01000060be00e040
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

PWS:Win32/Frethog!pz also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGeneric.Malware.S!dld!.53359F3D
ClamAVWin.Trojan.Onlinegames-7179
FireEyeGeneric.mg.a742f0fbd80ecbaf
SkyhighBehavesLike.Win32.Downloader.mc
ALYacGeneric.Malware.S!dld!.53359F3D
Cylanceunsafe
ZillyaTrojan.OnLineGames.Win32.96491
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanPSW:Win32/Frethog.2b736d7f
K7GWTrojan ( 7000000f1 )
K7AntiVirusTrojan ( 7000000f1 )
ArcabitGeneric.Malware.S!dld!.53359F3D
BitDefenderThetaAI:Packer.531319F019
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/PSW.Delf.NXR
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGeneric.Malware.S!dld!.53359F3D
NANO-AntivirusTrojan.Win32.Gamania.cwzkml
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.11a3a622
EmsisoftGeneric.Malware.S!dld!.53359F3D (B)
F-SecureTrojan.TR/Spy.Gen
DrWebTrojan.PWS.Gamania.20058
VIPREGeneric.Malware.S!dld!.53359F3D
SophosTroj/OLGame-A
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PSW.GamePass.Gen
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Spy.Gen
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
KingsoftWin32.Trojan.Generic.a
XcitiumTrojWare.Win32.Spy.CardSpy.A@1pbz5f
MicrosoftPWS:Win32/Frethog!pz
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGeneric.Malware.S!dld!.53359F3D
VaristW32/PWS.AOES-4666
AhnLab-V3Trojan/Win32.OnlineGameHack.C85447
McAfeeArtemis!A742F0FBD80E
MAXmalware (ai score=100)
VBA32BScope.Backdoor.Agent
PandaGeneric Malware
RisingTrojan.PSW.Win32.GameOL.ovg (CLASSIC)
YandexTrojan.OnlineGames.Gen.47
IkarusTrojan-PWS.Win32.Frethog
FortinetW32/OnLineGames.ZFO!tr.pws
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove PWS:Win32/Frethog!pz?

PWS:Win32/Frethog!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment